Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wmvq-q9h8-7j4g

Опубликовано: 13 мая 2022
Источник: github
Github: Прошло ревью
CVSS3: 5.3

Описание

Moodle sensitive information disclosure

A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7. No option existed to omit logs from data privacy exports, which may contain details of other users who interacted with the requester.

Пакеты

Наименование

moodle/moodle

composer
Затронутые версииВерсия исправления

= 3.5

3.5.1

Наименование

moodle/moodle

composer
Затронутые версииВерсия исправления

= 3.4.3

3.4.4

Наименование

moodle/moodle

composer
Затронутые версииВерсия исправления

>= 3.3, <= 3.3.6

3.3.7

EPSS

Процентиль: 46%
0.00232
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-532

Связанные уязвимости

CVSS3: 4.3
ubuntu
почти 7 лет назад

A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7. No option existed to omit logs from data privacy exports, which may contain details of other users who interacted with the requester.

CVSS3: 4.3
nvd
почти 7 лет назад

A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7. No option existed to omit logs from data privacy exports, which may contain details of other users who interacted with the requester.

CVSS3: 4.3
debian
почти 7 лет назад

A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7. No opt ...

EPSS

Процентиль: 46%
0.00232
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-532